I published the following diary on isc.sans.edu: “Quick Analysis of an Encrypted Compound Document Format“:
We like when our readers share interesting samples! Even if we have our own sources to hunt for malicious content, it’s always interesting to get fresh meat from third parties. Robert shared an interesting Microsoft Word document that I quickly analysed. Thanks to him! The document was delivered via an email that also contained the password to decrypt the file… [Read more]